CVE-2013-0019
Microsoft Internet Explorer 7-10 - Use-After-Free via Deleted Object Access
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2013-0019. PoCs published by Skylined.
AI-analyzed exploit summary This exploit triggers a use-after-free vulnerability in Microsoft Internet Explorer 9 by manipulating an iframe with a crafted XML file and JavaScript. The PoC demonstrates the vulnerability but does not include a full exploit chain for remote code execution.
Description
Use-after-free vulnerability in Microsoft Internet Explorer 7 through 10 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to a deleted object, aka "Internet Explorer COmWindowProxy Use After Free Vulnerability."
Exploits (1)
This exploit triggers a use-after-free vulnerability in Microsoft Internet Explorer 9 by manipulating an iframe with a crafted XML file and JavaScript. The PoC demonstrates the vulnerability but does not include a full exploit chain for remote code execution.